Fourth International Conference on Software Engineering Research, Management and Applications (SERA'06)
Design and Implementation of a Rule-based Security Engine for XML Web Services
Seattle, Washington
August 09-August 11
ISBN: 0-7695-2656-X
Web services are software systems that enable applications serving various functions through the web. Extensible Markup Language (XML) is used in the integration of applications which makes data sharing and communication within applications easier and uniform. Security is an important aspect of web services. Securing XML data is critical to the success of any web based applications or web services. In this research work we have designed and implemented a single-point rulebased security engine for Apache Axis. Apache Axis is an open source web services development and deployment platform. By doing this we reuse the same security engine for more than one web service so that applications need not to implement separate security logic. The security engine provides support for Authentication, Authorization, Decryption and Signature Verification. A test application is also implemented to validate the design and implementation of the rule-based security engine.
Citation:
Priya Vasudevan, Lan Yang, "Design and Implementation of a Rule-based Security Engine for XML Web Services," sera, pp.289-296, Fourth International Conference on Software Engineering Research, Management and Applications (SERA'06), 2006